Capture triggers for capturing network data

a network data and capture trigger technology, applied in the direction of transmission, electrical equipment, etc., can solve the problems of difficult, or at best extremely difficult, to deploy physical network capture devices and infrastructure in cloud computing environments, and achieve the effect of facilitating analysis of security risks

Active Publication Date: 2017-03-14
SPLUNK INC
View PDF160 Cites 29 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Benefits of technology

[0011]The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system provides a risk-identification mechanism for identifying a security risk from time-series event data generated from network packets captured by one or more remote capture agents distributed across a network. Next, the system provides a capture trigger for generating additional time-series event data from the network packets on the one or more remote capture agents based on the security risk, wherein the additional time-series event data includes one or more event attributes.
[0019]In some embodiments, the additional time-series event data includes an event attribute associated with a protocol that facilitates analysis of the security risk.

Problems solved by technology

However, customers are moving away from managing physical servers and data centers and toward public and private cloud computing environments that provide software, hardware, infrastructure, and / or platform resources as hosted services using computing, storage, and / or network devices at remote locations.
For these customers, it is either impossible, or at best extremely challenging, to deploy physical network capture devices and infrastructure in the cloud computing environments.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Capture triggers for capturing network data
  • Capture triggers for capturing network data
  • Capture triggers for capturing network data

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0038]The following description is presented to enable any person skilled in the art to make and use the embodiments, and is provided in the context of a particular application and its requirements. Various modifications to the disclosed embodiments will be readily apparent to those skilled in the art, and the general principles defined herein may be applied to other embodiments and applications without departing from the spirit and scope of the present disclosure. Thus, the present invention is not limited to the embodiments shown, but is to be accorded the widest scope consistent with the principles and features disclosed herein.

[0039]The data structures and code described in this detailed description are typically stored on a computer-readable storage medium, which may be any device or medium that can store code and / or data for use by a computer system. The computer-readable storage medium includes, but is not limited to, volatile memory, non-volatile memory, magnetic and optical...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system provides a risk-identification mechanism for identifying a security risk from time-series event data generated from network packets captured by one or more remote capture agents distributed across a network. Next, the system provides a capture trigger for generating additional time-series event data from the network packets on the one or more remote capture agents based on the security risk, wherein the additional time-series event data includes one or more event attributes.

Description

RELATED APPLICATION[0001]The subject matter of this application is related to the subject matter in a co-pending non-provisional application by inventor Michael Dickey, entitled “Distributed Processing of Network Data Using Remote Capture Agents,” having Ser. No. 14 / 253,713, and filing date 15 Apr. 2014.[0002]The subject matter of this application is related to the subject matter in a co-pending non-provisional application by inventors Vladimir A. Shcherbakov and Michael R. Dickey and filed on the same day as the instant application, entitled “Protocol-Based Capture of Network Data Using Remote Capture Agents,” having Ser. No. 14 / 528,898, and filed on 30 Oct. 2014.[0003]The subject matter of this application is also related to the subject matter in a co-pending non-provisional application by inventors Vladimir A. Shcherbakov, Michael R. Dickey, Cary Glen Noel, Kishore R. Ramasayam and Mignon Belongie and filed on the same day as the instant application, entitled “Streamlining Config...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(United States)
IPC IPC(8): H04L29/06
CPCH04L63/1425H04L63/0236H04L63/0218
Inventor CHAUHAN, VIJAYBADHANI, DEVENDRA M.MURPHEY, LUKE K.HAZEKAMP, DAVID
Owner SPLUNK INC
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products